Title
Anomaly Detection for Mixed Packet Sequences
Abstract
One-Dimensional Convolutional Neural Networks (1-DCNNs) have shown an admirable success in Natural Language Processing (NLP). Inspired by the capabilities of such approaches to overcome challenges related to sequence order, we present a 1-DCNN-based Intrusion Detection System (IDS) for attack detection in network traffic. Our proposal is capable of classifying mixed packet sequences without flow aggregation, thus reducing computational efforts. In addition, we prove that learning attack classes in an incremental manner and coping with the emergence of new patterns in a permanent implementation is feasible. We obtain comparable detection performance to other classification techniques, but with the outstanding achievement of being able to isolate malicious communications based on explainability analysis even for traffic with a comprehensive encryption.
Year
DOI
Venue
2020
10.1109/LCNSymposium50271.2020.9363264
2020 IEEE 45th LCN Symposium on Emerging Topics in Networking (LCN Symposium)
Keywords
DocType
ISBN
networking,encryption,convolutional neural networks,incremental learning
Conference
978-1-7281-8315-2
Citations 
PageRank 
References 
0
0.34
0
Authors
3
Name
Order
Citations
PageRank
Fares Meghdouri101.69
Félix Iglesias Vázquez2637.10
Tanja Zseby319936.35